Vulnerability index

Browse CVEs

292 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

CRITICAL 9.8 CVE-2023-35187 The SolarWinds Access Rights Manager was susceptible to a Directory Traversal Remote Code Vulnerability. This vulnerability allows an unauthenticated… Access Rights Manager after 2023.2.0.73 Fix from $2,3002023-10-19 HIGH 8.8 CVE-2023-35186 The SolarWinds Access Rights Manager was susceptible to Remote Code Execution Vulnerability. This vulnerability allows an authenticated user to abuse… Access Rights Manager after 2023.2.0.73 Fix from $1,9502023-10-19 HIGH 7.8 CVE-2023-35183 The SolarWinds Access Rights Manager was susceptible to Privilege Escalation Vulnerability. This vulnerability allows authenticated users to abuse lo… Access Rights Manager after 2023.2.0.73 Fix from $1,9502023-10-19 MEDIUM 6.8 CVE-2023-35185 The SolarWinds Access Rights Manager was susceptible to a Directory Traversal Remote Code Vulnerability using SYSTEM privileges. Access Rights Manager after 2023.2.0.73 Fix from $1,6002023-10-19 HIGH 8.8 CVE-2023-35180EPSS 27% The SolarWinds Access Rights Manager was susceptible to Remote Code Execution Vulnerability. This vulnerability allows authenticated users to abuse S… Access Rights Manager after 2023.2.0.73 Fix from $1,9502023-10-19 HIGH 7.8 CVE-2023-35181 The SolarWinds Access Rights Manager was susceptible to Privilege Escalation Vulnerability. This vulnerability allows users to abuse incorrect folder… Access Rights Manager after 2023.2.0.73 Fix from $1,9502023-10-19 HIGH 7.2 CVE-2023-23845EPSS 5% The SolarWinds Platform was susceptible to the Incorrect Comparison Vulnerability. This vulnerability allows users with administrative access to Sola… Orion Platform 2023.3.1+ Fix from $1,9502023-09-13 HIGH 7.2 CVE-2023-23840EPSS 5% The SolarWinds Platform was susceptible to the Incorrect Comparison Vulnerability. This vulnerability allows users with administrative access to Sola… Orion Platform 2023.3.1+ Fix from $1,9502023-09-13 HIGH 7.2 CVE-2023-40060 A vulnerability has been identified within Serv-U 15.4 and 15.4 Hotfix 1 that, if exploited, allows an actor to bypass multi-factor/two-factor authen… Serv U Mitigation only Fix from $1,9502023-09-07 HIGH 7.2 CVE-2023-35179 A vulnerability has been identified within Serv-U 15.4 that, if exploited, allows an actor to bypass multi-factor/two-factor authentication. The acto… Serv U Mitigation only Fix from $1,9502023-08-11 HIGH 7.2 CVE-2023-23842 The SolarWinds Network Configuration Manager was susceptible to the Directory Traversal Vulnerability. This vulnerability allows users with administr… Network Configuration Monitor 2023.3.0+ Fix from $1,9502023-07-26 HIGH 7.2 CVE-2023-23843 The SolarWinds Platform was susceptible to the Incorrect Comparison Vulnerability. This vulnerability allows users with administrative access to Sola… Solarwinds Platform 2023.3.0+ Fix from $1,9502023-07-26 HIGH 7.2 CVE-2023-23844 The SolarWinds Platform was susceptible to the Incorrect Comparison Vulnerability. This vulnerability allows users with administrative access to Sola… Solarwinds Platform 2023.3.0+ Fix from $1,9502023-07-26 HIGH 7.2 CVE-2023-33224 The SolarWinds Platform was susceptible to the Incorrect Behavior Order Vulnerability. This vulnerability allows users with administrative access to … Solarwinds Platform 2023.3.0+ Fix from $1,9502023-07-26 HIGH 7.2 CVE-2023-33225 The SolarWinds Platform was susceptible to the Incorrect Comparison Vulnerability. This vulnerability allows users with administrative access to Sola… Solarwinds Platform 2023.3.0+ Fix from $1,9502023-07-26 MEDIUM 6.1 CVE-2023-33231 XSS attack was possible in DPA 2023.2 due to insufficient input validation Database Performance Analyzer 2023.2.100+ Fix from $1,6002023-07-18 HIGH 7.5 CVE-2023-23841 SolarWinds Serv-U is submitting an HTTP request when changing or updating the attributes for File Share or File request.  Part of the URL of the requ… Serv U 15.4+ Fix from $1,9502023-06-15 MEDIUM 6.5 CVE-2023-23839 The SolarWinds Platform was susceptible to the Exposure of Sensitive Information Vulnerability. This vulnerability allows users to access Orion.WebCo… Solarwinds Platform 2023.2.0+ Fix from $1,6002023-04-25 HIGH 7.5 CVE-2023-23837 No exception handling vulnerability which revealed sensitive or excessive information to users. Database Performance Analyzer 2023.2+ Fix from $1,9502023-04-25 MEDIUM 6.5 CVE-2023-23838 Directory traversal and file enumeration vulnerability which allowed users to enumerate to different folders of the server. Database Performance Analyzer 2023.2+ Fix from $1,6002023-04-25 HIGH 7.8 CVE-2022-47505 The SolarWinds Platform was susceptible to the Local Privilege Escalation Vulnerability. This vulnerability allows a local adversary with a valid sys… Orion Platform 2023.2+ Fix from $1,9502023-04-21 HIGH 7.2 CVE-2022-36963EPSS 8% The SolarWinds Platform was susceptible to the Command Injection Vulnerability. This vulnerability allows a remote adversary with a valid SolarWinds … Orion Platform 2023.2+ Fix from $1,9502023-04-21 MEDIUM 6.1 CVE-2022-47509 The SolarWinds Platform was susceptible to the Incorrect Input Neutralization Vulnerability. This vulnerability allows a remote adversary with a vali… Orion Platform 2023.2+ Fix from $1,6002023-04-21 HIGH 7.2 CVE-2023-23836EPSS 80% SolarWinds Platform version 2022.4.1 was found to be susceptible to the Deserialization of Untrusted Data. This vulnerability allows a remote adversa… Orion Platform Mitigation only Fix from $1,9502023-02-15 HIGH 7.8 CVE-2022-47506 SolarWinds Platform was susceptible to the Directory Traversal Vulnerability. This vulnerability allows a local adversary with authenticated account … Orion Platform Mitigation only Fix from $1,9502023-02-15 HIGH 7.5 CVE-2022-47508 Customers who had configured their polling to occur via Kerberos did not expect NTLM Traffic on their environment, but since we were querying for dat… Server And Application Monitor Mitigation only Fix from $1,9502023-02-15 HIGH 7.2 CVE-2022-47507EPSS 7% SolarWinds Platform was susceptible to the Deserialization of Untrusted Data. This vulnerability allows a remote adversary with Orion admin-level acc… Orion Platform Mitigation only Fix from $1,9502023-02-15 HIGH 7.2 CVE-2022-38111EPSS 85% SolarWinds Platform was susceptible to the Deserialization of Untrusted Data. This vulnerability allows a remote adversary with Orion admin-level acc… Orion Platform Mitigation only Fix from $1,9502023-02-15 HIGH 7.2 CVE-2022-47503EPSS 24% SolarWinds Platform was susceptible to the Deserialization of Untrusted Data. This vulnerability allows a remote adversary with Orion admin-level acc… Orion Platform Mitigation only Fix from $1,9502023-02-15 HIGH 7.2 CVE-2022-47504EPSS 25% SolarWinds Platform was susceptible to the Deserialization of Untrusted Data. This vulnerability allows a remote adversary with Orion admin-level acc… Orion Platform Mitigation only Fix from $1,9502023-02-15